Effectiveness of Adversarial Benign and Malware Examples in Evasion and Poisoning Attacks

Fuente: arXiv
Saved in:
Bibliographic Details
Main Authors: Kozák, Matouš, Jureček, Martin
Format: Preprint
Published: 2025
Subjects:
Online Access:
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1866908358800310272
author Kozák, Matouš
Jureček, Martin
author_facet Kozák, Matouš
Jureček, Martin
contents Adversarial attacks present significant challenges for malware detection systems. This research investigates the effectiveness of benign and malicious adversarial examples (AEs) in evasion and poisoning attacks on the Portable Executable file domain. A novel focus of this study is on benign AEs, which, although not directly harmful, can increase false positives and undermine trust in antivirus solutions. We propose modifying existing adversarial malware generators to produce benign AEs and show they are as successful as malware AEs in evasion attacks. Furthermore, our data show that benign AEs have a more decisive influence in poisoning attacks than standard malware AEs, demonstrating their superior ability to decrease the model's performance. Our findings introduce new opportunities for adversaries and further increase the attack surface that needs to be protected by security researchers.
format Preprint
id arxiv_https___arxiv_org_abs_2501_10996
institution arXiv
publishDate 2025
record_format arxiv
spellingShingle Effectiveness of Adversarial Benign and Malware Examples in Evasion and Poisoning Attacks
Kozák, Matouš
Jureček, Martin
Cryptography and Security
Adversarial attacks present significant challenges for malware detection systems. This research investigates the effectiveness of benign and malicious adversarial examples (AEs) in evasion and poisoning attacks on the Portable Executable file domain. A novel focus of this study is on benign AEs, which, although not directly harmful, can increase false positives and undermine trust in antivirus solutions. We propose modifying existing adversarial malware generators to produce benign AEs and show they are as successful as malware AEs in evasion attacks. Furthermore, our data show that benign AEs have a more decisive influence in poisoning attacks than standard malware AEs, demonstrating their superior ability to decrease the model's performance. Our findings introduce new opportunities for adversaries and further increase the attack surface that needs to be protected by security researchers.
title Effectiveness of Adversarial Benign and Malware Examples in Evasion and Poisoning Attacks
topic Cryptography and Security
url https://arxiv.org/abs/2501.10996